cbcvebase.

Debian Firefox vulnerabilities

1,550 known vulnerabilities affecting debian/firefox.

Total CVEs
1,550
CISA KEV
11
actively exploited
Public exploits
39
Exploited in wild
20
Severity breakdown
CRITICAL333HIGH633MEDIUM542LOW42

Vulnerabilities

Page 36 of 78
CVE-2016-1953P3HIGHCVSS 8.8fixed in firefox 45.0-1 (sid)2016
CVE-2016-1953 [HIGH] CVE-2016-1953: firefox - Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox be... Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 45.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to js/src/jit/arm/Assembler-arm.cpp, and unknown other vectors. Scope: local sid: resolved (fixed in 45.0-1)
debian
CVE-2025-1012P3HIGHCVSS 7.5fixed in firefox 135.0-1 (sid)2025
CVE-2025-1012 [HIGH] CVE-2025-1012: firefox - A race during concurrent delazification could have led to a use-after-free. This... A race during concurrent delazification could have led to a use-after-free. This vulnerability affects Firefox < 135, Firefox ESR < 115.20, Firefox ESR < 128.7, Thunderbird < 128.7, and Thunderbird < 135. Scope: local sid: resolved (fixed in 135.0-1)
debian
CVE-2025-13016P3HIGHCVSS 7.5fixed in firefox 145.0-1 (sid)2025
CVE-2025-13016 [HIGH] CVE-2025-13016: firefox - Incorrect boundary conditions in the JavaScript: WebAssembly component. This vul... Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 145, Firefox ESR < 140.5, Thunderbird < 145, and Thunderbird < 140.5. Scope: local sid: resolved (fixed in 145.0-1)
debian
CVE-2016-5264P3HIGHCVSS 8.8fixed in firefox 48.0-1 (sid)2016
CVE-2016-5264 [HIGH] CVE-2016-5264: firefox - Use-after-free vulnerability in the nsNodeUtils::NativeAnonymousChildListChange ... Use-after-free vulnerability in the nsNodeUtils::NativeAnonymousChildListChange function in Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via an SVG element that is mishandled during effect application. Scope: local sid: resolved (fixed in 48.0-1)
debian
CVE-2026-4714P3HIGHCVSS 7.5fixed in firefox 149.0-1 (sid)2026
CVE-2026-4714 [HIGH] CVE-2026-4714: firefox - Incorrect boundary conditions in the Audio/Video component. This vulnerability a... Incorrect boundary conditions in the Audio/Video component. This vulnerability affects Firefox < 149, Firefox ESR < 140.9, Thunderbird < 149, and Thunderbird < 140.9. Scope: local sid: resolved (fixed in 149.0-1)
debian
CVE-2026-4708P3HIGHCVSS 7.5fixed in firefox 149.0-1 (sid)2026
CVE-2026-4708 [HIGH] CVE-2026-4708: firefox - Incorrect boundary conditions in the Graphics component. This vulnerability affe... Incorrect boundary conditions in the Graphics component. This vulnerability affects Firefox < 149, Firefox ESR < 140.9, Thunderbird < 149, and Thunderbird < 140.9. Scope: local sid: resolved (fixed in 149.0-1)
debian
CVE-2026-4719P3HIGHCVSS 7.5fixed in firefox 149.0-1 (sid)2026
CVE-2026-4719 [HIGH] CVE-2026-4719: firefox - Incorrect boundary conditions in the Graphics: Text component. This vulnerabilit... Incorrect boundary conditions in the Graphics: Text component. This vulnerability affects Firefox < 149, Firefox ESR < 140.9, Thunderbird < 149, and Thunderbird < 140.9. Scope: local sid: resolved (fixed in 149.0-1)
debian
CVE-2026-4713P3HIGHCVSS 7.5fixed in firefox 149.0-1 (sid)2026
CVE-2026-4713 [HIGH] CVE-2026-4713: firefox - Incorrect boundary conditions in the Graphics component. This vulnerability affe... Incorrect boundary conditions in the Graphics component. This vulnerability affects Firefox < 149, Firefox ESR < 140.9, Thunderbird < 149, and Thunderbird < 140.9. Scope: local sid: resolved (fixed in 149.0-1)
debian
CVE-2026-4704P3HIGHCVSS 7.5fixed in firefox 149.0-1 (sid)2026
CVE-2026-4704 [HIGH] CVE-2026-4704: firefox - Denial-of-service in the WebRTC: Signaling component. This vulnerability affects... Denial-of-service in the WebRTC: Signaling component. This vulnerability affects Firefox < 149, Firefox ESR < 140.9, Thunderbird < 149, and Thunderbird < 140.9. Scope: local sid: resolved (fixed in 149.0-1)
debian
CVE-2024-3853P3HIGHCVSS 7.5fixed in firefox 125.0.1-1 (sid)2024
CVE-2024-3853 [HIGH] CVE-2024-3853: firefox - A use-after-free could result if a JavaScript realm was in the process of being ... A use-after-free could result if a JavaScript realm was in the process of being initialized when a garbage collection started. This vulnerability affects Firefox < 125. Scope: local sid: resolved (fixed in 125.0.1-1)
debian
CVE-2025-13025P3HIGHCVSS 7.5fixed in firefox 145.0-1 (sid)2025
CVE-2025-13025 [HIGH] CVE-2025-13025: firefox - Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerabil... Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability affects Firefox < 145 and Thunderbird < 145. Scope: local sid: resolved (fixed in 145.0-1)
debian
CVE-2026-2803P3HIGHCVSS 7.5fixed in firefox 148.0-1 (sid)2026
CVE-2026-2803 [HIGH] CVE-2026-2803: firefox - Information disclosure, mitigation bypass in the Settings UI component. This vul... Information disclosure, mitigation bypass in the Settings UI component. This vulnerability affects Firefox < 148 and Thunderbird < 148. Scope: local sid: resolved (fixed in 148.0-1)
debian
CVE-2022-22759P3CRITICALCVSS 9.6fixed in firefox 97.0-1 (sid)2022
CVE-2022-22759 [CRITICAL] CVE-2022-22759: firefox - If a document created a sandboxed iframe without <code>allow-scripts</code>, and... If a document created a sandboxed iframe without allow-scripts, and subsequently appended an element to the iframe's document that e.g. had a JavaScript event handler - the event handler would have run despite the iframe's sandbox. This vulnerability affects Firefox < 97, Thunderbird < 91.6, and Firefox ESR < 91.6. Scope: local sid: resolved (fixed in 97.0-1)
debian
CVE-2025-1936P3HIGHCVSS 7.3fixed in firefox 136.0-1 (sid)2025
CVE-2025-1936 [HIGH] CVE-2025-1936: firefox - jar: URLs retrieve local file content packaged in a ZIP archive. The null and ev... jar: URLs retrieve local file content packaged in a ZIP archive. The null and everything after it was ignored when retrieving the content from the archive, but the fake extension after the null was used to determine the type of content. This could have been used to hide code in a web extension disguised as something else like an image. This vulnerability affects Firef
debian
CVE-2018-5125P3HIGHCVSS 8.8fixed in firefox 59.0-1 (sid)2018
CVE-2018-5125 [HIGH] CVE-2018-5125: firefox - Memory safety bugs were reported in Firefox 58 and Firefox ESR 52.6. Some of the... Memory safety bugs were reported in Firefox 58 and Firefox ESR 52.6. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Thunderbird < 52.7, Firefox ESR < 52.7, and Firefox < 59. Scope: local sid: resolved (fixed in 59.0-1)
debian
CVE-2016-9905P3LOWCVSS 8.8fixed in firefox-esr 45.6.0esr-1 (bookworm)2016
CVE-2016-9905 [HIGH] CVE-2016-9905: firefox - A potentially exploitable crash in "EnumerateSubDocuments" while adding or remov... A potentially exploitable crash in "EnumerateSubDocuments" while adding or removing sub-documents. This vulnerability affects Firefox ESR < 45.6 and Thunderbird < 45.6. Scope: local sid: resolved
debian
CVE-2016-2795P3HIGHCVSS 8.8fixed in firefox 45.0-1 (sid)2016
CVE-2016-2795 [HIGH] CVE-2016-2795: firefox - The graphite2::FileFace::get_table_fn function in Graphite 2 before 1.3.6, as us... The graphite2::FileFace::get_table_fn function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, does not initialize memory for an unspecified data structure, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted Graphite smart font. Scope: local sid: resolved (
debian
CVE-2016-2790P3HIGHCVSS 8.8fixed in firefox 45.0-1 (sid)2016
CVE-2016-2790 [HIGH] CVE-2016-2790: firefox - The graphite2::TtfUtil::GetTableInfo function in Graphite 2 before 1.3.6, as use... The graphite2::TtfUtil::GetTableInfo function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, does not initialize memory for an unspecified data structure, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted Graphite smart font. Scope: local sid: resolved (f
debian
CVE-2018-5100P3HIGHCVSS 7.5fixed in firefox 58.0-1 (sid)2018
CVE-2018-5100 [HIGH] CVE-2018-5100: firefox - A use-after-free vulnerability can occur when arguments passed to the "IsPotenti... A use-after-free vulnerability can occur when arguments passed to the "IsPotentiallyScrollable" function are freed while still in use by scripts. This results in a potentially exploitable crash. This vulnerability affects Firefox < 58. Scope: local sid: resolved (fixed in 58.0-1)
debian
CVE-2018-12375P3HIGHCVSS 8.8fixed in firefox 62.0-1 (sid)2018
CVE-2018-12375 [HIGH] CVE-2018-12375: firefox - Memory safety bugs present in Firefox 61. Some of these bugs showed evidence of ... Memory safety bugs present in Firefox 61. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 62. Scope: local sid: resolved (fixed in 62.0-1)
debian
Debian Firefox vulnerabilities | cvebase